An issue was discovered in beta versions of the 1Password command-line tool prior to 0.5.5 and in beta versions of the 1Password SCIM bridge prior to 0.7.3. An insecure random number generator was used to generate various keys. An attacker with access to the user's encrypted data may be able to perform brute-force calculations of encryption keys and thus succeed at decryption.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T10:58:40.273Z
Reserved: 2020-03-09T00:00:00
Link: CVE-2020-10256
No data.
Status : Modified
Published: 2020-10-27T14:15:13.453
Modified: 2024-11-21T04:55:04.880
Link: CVE-2020-10256
No data.
OpenCVE Enrichment
No data.